Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

Description: Google is preparing for a future with AGI, ASI, and machine consciousness.
Source: 404 Media
April 15th, 2025 (7 days ago)
Description: PEÑA BRIONES MCDANIEL & CO. offers a wide range of accounting, ta x, assurance, and consulting services across Texas and New Mexico . Their clientele includes individuals, non-profits, governments, financial institutions, and businesses from various industries. We are ready to upload more than 34 GB of essential corporate doc uments such as: marriage licenses, corporate licenses, agreements and contracts, personal passport scans, driver licenses, contact numbers and e-mail addresses of employees and customers, financi al data (audits, payment details, reports), etc.
Source: Ransomware.live
April 15th, 2025 (7 days ago)
Description: King Industries, Inc. designs, manufactures, and distributes addi tives for small to large companies throughout the world who make their own branded products we all know and use like engine oils, greases, hydraulic oils, paints, coatings, and rubber goods. We are ready to upload more than 260 GB of essential corporate do cuments such as: corporate NDA’s, passport scans, medical documen ts, contact numbers and e-mail addresses of employees and custome rs, financial data (audits, payment details, reports), etc.
Source: Ransomware.live
April 15th, 2025 (7 days ago)
Description: A House committee launched an investigation into the privacy and security risks associated with the bankruptcy of genetic testing company 23andMe and has asked its former CEO to testify at a hearing planned for early May.
Source: The Record
April 15th, 2025 (7 days ago)

CVE-2025-29280

Description: Stored cross-site scripting vulnerability exists in PerfreeBlog v4.0.11 in the website name field of the backend system settings interface allows an attacker to insert and execute arbitrary malicious code.

EPSS Score: 0.03%

Source: CVE
April 15th, 2025 (7 days ago)

CVE-2025-28136

Description: TOTOLINK A800R V4.1.2cu.5137_B20200730 was found to contain a buffer overflow vulnerability in the downloadFile.cgi.

EPSS Score: 0.04%

Source: CVE
April 15th, 2025 (7 days ago)
Description: Cybersecurity researchers have disclosed a malicious package uploaded to the Python Package Index (PyPI) repository that's designed to reroute trading orders placed on the MEXC cryptocurrency exchange to a malicious server and steal tokens. The package, ccxt-mexc-futures, purports to be an extension built on top of a popular Python library named ccxt (short for CryptoCurrency eXchange Trading),
Source: TheHackerNews
April 15th, 2025 (7 days ago)
Description: The China-linked threat actor known as UNC5174 has been attributed to a new campaign that leverages a variant of a known malware dubbed SNOWLIGHT and a new open-source tool called VShell to infect Linux systems. "Threat actors are increasingly using open source tools in their arsenals for cost-effectiveness and obfuscation to save money and, in this case, plausibly blend in with the pool of
Source: TheHackerNews
April 15th, 2025 (7 days ago)
Source: TheRegister
April 15th, 2025 (7 days ago)
Description: Sysdig researchers detailed an ongoing campaign from China-backed threat actor UNC5174, which is using open source hacking tools to stay under the radar.
Source: Dark Reading
April 15th, 2025 (7 days ago)